Skip to content

Commit a9246cd

Browse files
committed
Add provisioner with a small default duration.
1 parent 89fb49c commit a9246cd

File tree

1 file changed

+55
-37
lines changed

1 file changed

+55
-37
lines changed

examples/pki/config/ca.json

+55-37
Original file line numberDiff line numberDiff line change
@@ -1,40 +1,58 @@
11
{
2-
"root": "examples/pki/secrets/root_ca.crt",
3-
"crt": "examples/pki/secrets/intermediate_ca.crt",
4-
"key": "examples/pki/secrets/intermediate_ca_key",
5-
"password": "password",
6-
"address": ":9000",
7-
"dnsNames": [
8-
"localhost"
9-
],
10-
"logger": {
11-
"format": "text"
12-
},
13-
"authority": {
14-
"provisioners": [
15-
{
16-
"name": "mariano@smallstep.com",
17-
"type": "jwk",
18-
"key": {
19-
"use": "sig",
20-
"kty": "EC",
21-
"kid": "DmAtZt2EhmZr_iTJJ387fr4Md2NbzMXGdXQNW1UWPXk",
22-
"crv": "P-256",
23-
"alg": "ES256",
24-
"x": "jXoO1j4CXxoTC32pNzkVC8l6k2LfP0k5ndhJZmcdVbk",
25-
"y": "c3JDL4GTFxJWHa8EaHdMh4QgwMh64P2_AGWrD0ADXcI"
2+
"root": "examples/pki/secrets/root_ca.crt",
3+
"crt": "examples/pki/secrets/intermediate_ca.crt",
4+
"key": "examples/pki/secrets/intermediate_ca_key",
5+
"password": "password",
6+
"address": ":9000",
7+
"dnsNames": [
8+
"localhost"
9+
],
10+
"logger": {
11+
"format": "text"
12+
},
13+
"authority": {
14+
"provisioners": [
15+
{
16+
"name": "mariano@smallstep.com",
17+
"type": "jwk",
18+
"key": {
19+
"use": "sig",
20+
"kty": "EC",
21+
"kid": "DmAtZt2EhmZr_iTJJ387fr4Md2NbzMXGdXQNW1UWPXk",
22+
"crv": "P-256",
23+
"alg": "ES256",
24+
"x": "jXoO1j4CXxoTC32pNzkVC8l6k2LfP0k5ndhJZmcdVbk",
25+
"y": "c3JDL4GTFxJWHa8EaHdMh4QgwMh64P2_AGWrD0ADXcI"
26+
},
27+
"encryptedKey": "eyJhbGciOiJQQkVTMi1IUzI1NitBMTI4S1ciLCJjdHkiOiJqd2sranNvbiIsImVuYyI6IkEyNTZHQ00iLCJwMmMiOjEwMDAwMCwicDJzIjoiOTFVWjdzRGw3RlNXcldfX1I1NUh3USJ9.FcWtrBDNgrkA33G9Ll9sXh1cPF-3jVXeYe1FLmSDc_Q2PmfLOPvJOA.0ZoN32ayaRWnufJb.WrkffMmDLWiq1-2kn-w7-kVBGW12gjNCBHNHB1hyEdED0rWH1YWpKd8FjoOACdJyLhSn4kAS3Lw5AH7fvO27A48zzvoxZU5EgSm5HG9IjkIH-LBJ-v79ShkpmPylchgjkFhxa5epD11OIK4rFmI7s-0BCjmJokLR_DZBhDMw2khGnsr_MEOfAz9UnqXaQ4MIy8eT52xUpx68gpWFlz2YP3EqiYyNEv0PpjMtyP5lO2i8-p8BqvuJdus9H3fO5Dg-1KVto1wuqh4BQ2JKTauv60QAnM_4sdxRHku3F_nV64SCrZfDvnN2ve21raFROtyXaqHZhN6lyoPxDncy8v4.biaOblEe0N-gMpJyFZ-3-A"
2628
},
27-
"encryptedKey": "eyJhbGciOiJQQkVTMi1IUzI1NitBMTI4S1ciLCJjdHkiOiJqd2sranNvbiIsImVuYyI6IkEyNTZHQ00iLCJwMmMiOjEwMDAwMCwicDJzIjoiOTFVWjdzRGw3RlNXcldfX1I1NUh3USJ9.FcWtrBDNgrkA33G9Ll9sXh1cPF-3jVXeYe1FLmSDc_Q2PmfLOPvJOA.0ZoN32ayaRWnufJb.WrkffMmDLWiq1-2kn-w7-kVBGW12gjNCBHNHB1hyEdED0rWH1YWpKd8FjoOACdJyLhSn4kAS3Lw5AH7fvO27A48zzvoxZU5EgSm5HG9IjkIH-LBJ-v79ShkpmPylchgjkFhxa5epD11OIK4rFmI7s-0BCjmJokLR_DZBhDMw2khGnsr_MEOfAz9UnqXaQ4MIy8eT52xUpx68gpWFlz2YP3EqiYyNEv0PpjMtyP5lO2i8-p8BqvuJdus9H3fO5Dg-1KVto1wuqh4BQ2JKTauv60QAnM_4sdxRHku3F_nV64SCrZfDvnN2ve21raFROtyXaqHZhN6lyoPxDncy8v4.biaOblEe0N-gMpJyFZ-3-A"
28-
}
29-
]
30-
},
31-
"tls": {
32-
"cipherSuites": [
33-
"TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305",
34-
"TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256"
35-
],
36-
"minVersion": 1.2,
37-
"maxVersion": 1.2,
38-
"renegotiation": false
39-
}
29+
{
30+
"name": "mike@smallstep.com",
31+
"type": "jwk",
32+
"key": {
33+
"use": "sig",
34+
"kty": "EC",
35+
"kid": "YYNxZ0rq0WsT2MlqLCWvgme3jszkmt99KjoGEJJwAKs",
36+
"crv": "P-256",
37+
"alg": "ES256",
38+
"x": "LsI8nHBflc-mrCbRqhl8d3hSl5sYuSM1AbXBmRfznyg",
39+
"y": "F99LoOvi7z-ZkumsgoHIhodP8q9brXe4bhF3szK-c_w"
40+
},
41+
"encryptedKey": "eyJhbGciOiJQQkVTMi1IUzI1NitBMTI4S1ciLCJjdHkiOiJqd2sranNvbiIsImVuYyI6IkEyNTZHQ00iLCJwMmMiOjEwMDAwMCwicDJzIjoiVERQS2dzcEItTUR4ZDJxTGo0VlpwdyJ9.2_j0cZgTm2eFkZ-hrtr1hBIvLxN0w3TZhbX0Jrrq7vBMaywhgFcGTA.mCasZCbZJ-JT7vjA.bW052WDKSf_ueEXq1dyxLq0n3qXWRO-LXr7OzBLdUKWKSBGQrzqS5KJWqdUCPoMIHTqpwYvm-iD6uFlcxKBYxnsAG_hoq_V3icvvwNQQSd_q7Thxr2_KtPIDJWNuX1t5qXp11hkgb-8d5HO93CmN7xNDG89pzSUepT6RYXOZ483mP5fre9qzkfnrjx3oPROCnf3SnIVUvqk7fwfXuniNsg3NrNqncHYUQNReiq3e9I1R60w0ZQTvIReY7-zfiq7iPgVqmu5I7XGgFK4iBv0L7UOEora65b4hRWeLxg5t7OCfUqrS9yxAk8FdjFb9sEfjopWViPRepB0dYPH8dVI.fb6-7XWqp0j6CR9Li0NI-Q",
42+
"claims": {
43+
"minTLSCertDuration": "60s",
44+
"defaultTLSCertDuration": "120s"
45+
}
46+
}
47+
]
48+
},
49+
"tls": {
50+
"cipherSuites": [
51+
"TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305",
52+
"TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256"
53+
],
54+
"minVersion": 1.2,
55+
"maxVersion": 1.2,
56+
"renegotiation": false
57+
}
4058
}

0 commit comments

Comments
 (0)